PT-2016-5012 · None · Libdwarf

Xiaoqixue_1

·

Published

2016-02-08

·

Updated

2019-10-02

·

CVE-2016-2091

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions libdwarf version 20151114
Description The issue allows attackers to cause a denial of service, specifically an out-of-bounds read, by utilizing a crafted ELF object file. This is related to the dwarf read cie fde prefix function in dwarf frame2.c.
Recommendations For libdwarf version 20151114, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-2091
DLA-669-1

Affected Products

Libdwarf